Cross-Site Scripting (XSS) is a type of web vulnerability that allows attackers to inject malicious scripts into webpages. What is the purpose of using the following JavaScript code in an XSS attack?
<script>alert("Hacked!")</script>
Cybersecurity Quiz: 5.17 Labs
Quiz
•
Computers
•
11th Grade
•
Hard
Michael Goddard
FREE Resource
10 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Cross-Site Scripting (XSS) is a type of web vulnerability that allows attackers to inject malicious scripts into webpages. What is the purpose of using the following JavaScript code in an XSS attack?
<script>alert("Hacked!")</script>
To display an alert to test for XSS vulnerabilities
To modify the database structure
To gain administrator access to a system
To perform a brute force attack
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
In XSS Tier 1 (Juice Shop Lab), why was the following code injected into the search bar?
<iframe src="javascript:alert('XSS')">
To test if the website allows script execution
To log in as an administrator
To delete the website’s database
To change the website's background
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What security setting had to be lowered in DVWA before performing XSS attacks?
Firewall settings
User privileges
DVWA security level
JavaScript permissions
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
In the SQL Injection (Juice Shop) lab, what did the following SQL statement allow a user to do?
' OR TRUE --
Display all products in the store
Bypass login authentication and access an account
Insert new records into the database
Encrypt the database
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Why is an SQL injection attack dangerous for a database?
It can allow an attacker to execute arbitrary SQL commands
It slows down the server temporarily
It only affects front-end website performance
It is only possible with administrator privileges
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
During the DVWA SQL Injection lab, entering 1' OR 1=1 in the User ID field resulted in:
An error message
Access to the admin account
Displaying all users in the database
Locking the account due to failed login attempts
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
In the XSS DVWA lab, why did unchecking the HttpOnly flag in the PHPSESSID cookie make the website more vulnerable?
It allowed attackers to see session IDs using JavaScript
It disabled encryption on the webpage
It enabled two-factor authentication bypass
It forced the session to expire immediately
11 questions
SQL
Quiz
•
10th - 12th Grade
15 questions
Databases
Quiz
•
10th Grade - University
11 questions
Reflected Cross-Site Scripting (XSS)
Quiz
•
11th Grade
10 questions
POST TEST BASIS DATA KELAS 11
Quiz
•
11th Grade
10 questions
Databases - DBMS
Quiz
•
1st - 11th Grade
10 questions
Database
Quiz
•
8th - 12th Grade
15 questions
Database Concepts
Quiz
•
11th Grade
15 questions
7.7 Software Security Review
Quiz
•
8th Grade - University
15 questions
Character Analysis
Quiz
•
4th Grade
17 questions
Chapter 12 - Doing the Right Thing
Quiz
•
9th - 12th Grade
10 questions
American Flag
Quiz
•
1st - 2nd Grade
20 questions
Reading Comprehension
Quiz
•
5th Grade
30 questions
Linear Inequalities
Quiz
•
9th - 12th Grade
20 questions
Types of Credit
Quiz
•
9th - 12th Grade
18 questions
Full S.T.E.A.M. Ahead Summer Academy Pre-Test 24-25
Quiz
•
5th Grade
14 questions
Misplaced and Dangling Modifiers
Quiz
•
6th - 8th Grade
17 questions
Chapter 12 - Doing the Right Thing
Quiz
•
9th - 12th Grade
20 questions
Types of Credit
Quiz
•
9th - 12th Grade
30 questions
Linear Inequalities
Quiz
•
9th - 12th Grade
20 questions
Taxes
Quiz
•
9th - 12th Grade
17 questions
Parts of Speech
Quiz
•
7th - 12th Grade
20 questions
Chapter 3 - Making a Good Impression
Quiz
•
9th - 12th Grade
20 questions
Inequalities Graphing
Quiz
•
9th - 12th Grade
10 questions
Identifying equations
Quiz
•
KG - University